msticpy.context.azure package
Data provider sub-package.
Submodules
- msticpy.context.azure.azure_data module
- msticpy.context.azure.sentinel_analytics module
SentinelAnalyticsMixinSentinelAnalyticsMixin.base_urlSentinelAnalyticsMixin.check_connected()SentinelAnalyticsMixin.cloudSentinelAnalyticsMixin.compute_clientSentinelAnalyticsMixin.connect()SentinelAnalyticsMixin.create_analytic_rule()SentinelAnalyticsMixin.credentialsSentinelAnalyticsMixin.delete_analytic_rule()SentinelAnalyticsMixin.endpointsSentinelAnalyticsMixin.get_alert_rules()SentinelAnalyticsMixin.get_analytic_rules()SentinelAnalyticsMixin.get_metrics()SentinelAnalyticsMixin.get_network_details()SentinelAnalyticsMixin.get_resource_details()SentinelAnalyticsMixin.get_resources()SentinelAnalyticsMixin.get_sentinel_workspaces()SentinelAnalyticsMixin.get_subscription_info()SentinelAnalyticsMixin.get_subscriptions()SentinelAnalyticsMixin.list_alert_rules()SentinelAnalyticsMixin.list_analytic_rules()SentinelAnalyticsMixin.list_analytic_templates()SentinelAnalyticsMixin.list_sentinel_workspaces()SentinelAnalyticsMixin.monitoring_clientSentinelAnalyticsMixin.network_clientSentinelAnalyticsMixin.resource_clientSentinelAnalyticsMixin.sent_urlsSentinelAnalyticsMixin.sub_clientSentinelAnalyticsMixin.url
SentinelHuntingMixinSentinelHuntingMixin.base_urlSentinelHuntingMixin.check_connected()SentinelHuntingMixin.cloudSentinelHuntingMixin.compute_clientSentinelHuntingMixin.connect()SentinelHuntingMixin.credentialsSentinelHuntingMixin.endpointsSentinelHuntingMixin.get_hunting_queries()SentinelHuntingMixin.get_metrics()SentinelHuntingMixin.get_network_details()SentinelHuntingMixin.get_resource_details()SentinelHuntingMixin.get_resources()SentinelHuntingMixin.get_sentinel_workspaces()SentinelHuntingMixin.get_subscription_info()SentinelHuntingMixin.get_subscriptions()SentinelHuntingMixin.list_hunting_queries()SentinelHuntingMixin.list_saved_queries()SentinelHuntingMixin.list_sentinel_workspaces()SentinelHuntingMixin.monitoring_clientSentinelHuntingMixin.network_clientSentinelHuntingMixin.resource_clientSentinelHuntingMixin.sent_urlsSentinelHuntingMixin.sub_clientSentinelHuntingMixin.url
- msticpy.context.azure.sentinel_bookmarks module
SentinelBookmarksMixinSentinelBookmarksMixin.base_urlSentinelBookmarksMixin.check_connected()SentinelBookmarksMixin.cloudSentinelBookmarksMixin.compute_clientSentinelBookmarksMixin.connect()SentinelBookmarksMixin.create_bookmark()SentinelBookmarksMixin.credentialsSentinelBookmarksMixin.delete_bookmark()SentinelBookmarksMixin.endpointsSentinelBookmarksMixin.get_bookmarks()SentinelBookmarksMixin.get_metrics()SentinelBookmarksMixin.get_network_details()SentinelBookmarksMixin.get_resource_details()SentinelBookmarksMixin.get_resources()SentinelBookmarksMixin.get_sentinel_workspaces()SentinelBookmarksMixin.get_subscription_info()SentinelBookmarksMixin.get_subscriptions()SentinelBookmarksMixin.list_bookmarks()SentinelBookmarksMixin.list_sentinel_workspaces()SentinelBookmarksMixin.monitoring_clientSentinelBookmarksMixin.network_clientSentinelBookmarksMixin.resource_clientSentinelBookmarksMixin.sent_urlsSentinelBookmarksMixin.sub_clientSentinelBookmarksMixin.url
- msticpy.context.azure.sentinel_core module
AzureSentinelMicrosoftSentinelMicrosoftSentinel.add_bookmark_to_incident()MicrosoftSentinel.add_tag()MicrosoftSentinel.add_watchlist_item()MicrosoftSentinel.base_urlMicrosoftSentinel.bulk_create_indicators()MicrosoftSentinel.check_connected()MicrosoftSentinel.check_search_status()MicrosoftSentinel.cloudMicrosoftSentinel.compute_clientMicrosoftSentinel.connect()MicrosoftSentinel.create_analytic_rule()MicrosoftSentinel.create_bookmark()MicrosoftSentinel.create_dynamic_summary()MicrosoftSentinel.create_incident()MicrosoftSentinel.create_indicator()MicrosoftSentinel.create_search()MicrosoftSentinel.create_watchlist()MicrosoftSentinel.credentialsMicrosoftSentinel.default_resource_groupMicrosoftSentinel.default_resource_idMicrosoftSentinel.default_subscription_idMicrosoftSentinel.default_workspace_nameMicrosoftSentinel.default_workspace_settingsMicrosoftSentinel.delete_analytic_rule()MicrosoftSentinel.delete_bookmark()MicrosoftSentinel.delete_dynamic_summary()MicrosoftSentinel.delete_indicator()MicrosoftSentinel.delete_search()MicrosoftSentinel.delete_watchlist()MicrosoftSentinel.delete_watchlist_item()MicrosoftSentinel.df_to_dynamic_summaries()MicrosoftSentinel.df_to_dynamic_summary()MicrosoftSentinel.endpointsMicrosoftSentinel.get_alert_rules()MicrosoftSentinel.get_all_indicators()MicrosoftSentinel.get_analytic_rules()MicrosoftSentinel.get_bookmarks()MicrosoftSentinel.get_dynamic_summary()MicrosoftSentinel.get_entities()MicrosoftSentinel.get_hunting_queries()MicrosoftSentinel.get_incident()MicrosoftSentinel.get_incident_alerts()MicrosoftSentinel.get_incident_bookmarks()MicrosoftSentinel.get_incident_comments()MicrosoftSentinel.get_incidents()MicrosoftSentinel.get_indicator()MicrosoftSentinel.get_metrics()MicrosoftSentinel.get_network_details()MicrosoftSentinel.get_resource_details()MicrosoftSentinel.get_resource_id_from_url()MicrosoftSentinel.get_resources()MicrosoftSentinel.get_sentinel_workspaces()MicrosoftSentinel.get_subscription_info()MicrosoftSentinel.get_subscriptions()MicrosoftSentinel.get_ti_metrics()MicrosoftSentinel.get_workspace_details_from_url()MicrosoftSentinel.get_workspace_id()MicrosoftSentinel.get_workspace_name()MicrosoftSentinel.get_workspace_settings()MicrosoftSentinel.get_workspace_settings_by_name()MicrosoftSentinel.list_alert_rules()MicrosoftSentinel.list_analytic_rules()MicrosoftSentinel.list_analytic_templates()MicrosoftSentinel.list_bookmarks()MicrosoftSentinel.list_data_connectors()MicrosoftSentinel.list_dynamic_summaries()MicrosoftSentinel.list_hunting_queries()MicrosoftSentinel.list_incidents()MicrosoftSentinel.list_saved_queries()MicrosoftSentinel.list_sentinel_workspaces()MicrosoftSentinel.list_watchlist_items()MicrosoftSentinel.list_watchlists()MicrosoftSentinel.monitoring_clientMicrosoftSentinel.network_clientMicrosoftSentinel.new_dynamic_summary()MicrosoftSentinel.post_comment()MicrosoftSentinel.query_indicators()MicrosoftSentinel.resource_clientMicrosoftSentinel.sent_urlsMicrosoftSentinel.set_default_subscription()MicrosoftSentinel.set_default_workspace()MicrosoftSentinel.sub_clientMicrosoftSentinel.update_dynamic_summary()MicrosoftSentinel.update_incident()MicrosoftSentinel.update_indicator()MicrosoftSentinel.url
- msticpy.context.azure.sentinel_dynamic_summary module
SentinelDynamicSummaryMixinSentinelDynamicSummaryMixin.base_urlSentinelDynamicSummaryMixin.check_connected()SentinelDynamicSummaryMixin.cloudSentinelDynamicSummaryMixin.compute_clientSentinelDynamicSummaryMixin.connect()SentinelDynamicSummaryMixin.create_dynamic_summary()SentinelDynamicSummaryMixin.credentialsSentinelDynamicSummaryMixin.delete_dynamic_summary()SentinelDynamicSummaryMixin.df_to_dynamic_summaries()SentinelDynamicSummaryMixin.df_to_dynamic_summary()SentinelDynamicSummaryMixin.endpointsSentinelDynamicSummaryMixin.get_dynamic_summary()SentinelDynamicSummaryMixin.get_metrics()SentinelDynamicSummaryMixin.get_network_details()SentinelDynamicSummaryMixin.get_resource_details()SentinelDynamicSummaryMixin.get_resources()SentinelDynamicSummaryMixin.get_sentinel_workspaces()SentinelDynamicSummaryMixin.get_subscription_info()SentinelDynamicSummaryMixin.get_subscriptions()SentinelDynamicSummaryMixin.list_dynamic_summaries()SentinelDynamicSummaryMixin.list_sentinel_workspaces()SentinelDynamicSummaryMixin.monitoring_clientSentinelDynamicSummaryMixin.network_clientSentinelDynamicSummaryMixin.new_dynamic_summary()SentinelDynamicSummaryMixin.resource_clientSentinelDynamicSummaryMixin.sent_urlsSentinelDynamicSummaryMixin.sub_clientSentinelDynamicSummaryMixin.update_dynamic_summary()SentinelDynamicSummaryMixin.url
SentinelQueryProvider
- msticpy.context.azure.sentinel_dynamic_summary_types module
DynamicSummaryDynamicSummary.add_summary_items()DynamicSummary.append_summary_items()DynamicSummary.df_to_dynamic_summaries()DynamicSummary.df_to_dynamic_summary()DynamicSummary.fieldsDynamicSummary.from_json()DynamicSummary.new_dynamic_summary()DynamicSummary.to_df()DynamicSummary.to_json()DynamicSummary.to_json_api()
DynamicSummaryItemDynamicSummaryItem.event_time_utcDynamicSummaryItem.fieldsDynamicSummaryItem.observable_typeDynamicSummaryItem.observable_valueDynamicSummaryItem.packed_contentDynamicSummaryItem.relation_idDynamicSummaryItem.relation_nameDynamicSummaryItem.search_keyDynamicSummaryItem.summary_item_idDynamicSummaryItem.tacticsDynamicSummaryItem.techniquesDynamicSummaryItem.to_api_dict()
FieldListdf_to_dynamic_summaries()df_to_dynamic_summary()
- msticpy.context.azure.sentinel_incidents module
SentinelIncidentsMixinSentinelIncidentsMixin.add_bookmark_to_incident()SentinelIncidentsMixin.base_urlSentinelIncidentsMixin.check_connected()SentinelIncidentsMixin.cloudSentinelIncidentsMixin.compute_clientSentinelIncidentsMixin.connect()SentinelIncidentsMixin.create_bookmark()SentinelIncidentsMixin.create_incident()SentinelIncidentsMixin.credentialsSentinelIncidentsMixin.delete_bookmark()SentinelIncidentsMixin.endpointsSentinelIncidentsMixin.get_bookmarks()SentinelIncidentsMixin.get_entities()SentinelIncidentsMixin.get_incident()SentinelIncidentsMixin.get_incident_alerts()SentinelIncidentsMixin.get_incident_bookmarks()SentinelIncidentsMixin.get_incident_comments()SentinelIncidentsMixin.get_incidents()SentinelIncidentsMixin.get_metrics()SentinelIncidentsMixin.get_network_details()SentinelIncidentsMixin.get_resource_details()SentinelIncidentsMixin.get_resources()SentinelIncidentsMixin.get_sentinel_workspaces()SentinelIncidentsMixin.get_subscription_info()SentinelIncidentsMixin.get_subscriptions()SentinelIncidentsMixin.list_bookmarks()SentinelIncidentsMixin.list_incidents()SentinelIncidentsMixin.list_sentinel_workspaces()SentinelIncidentsMixin.monitoring_clientSentinelIncidentsMixin.network_clientSentinelIncidentsMixin.post_comment()SentinelIncidentsMixin.resource_clientSentinelIncidentsMixin.sent_urlsSentinelIncidentsMixin.sub_clientSentinelIncidentsMixin.update_incident()SentinelIncidentsMixin.url
- msticpy.context.azure.sentinel_search module
SentinelSearchlistsMixinSentinelSearchlistsMixin.base_urlSentinelSearchlistsMixin.check_connected()SentinelSearchlistsMixin.check_search_status()SentinelSearchlistsMixin.cloudSentinelSearchlistsMixin.compute_clientSentinelSearchlistsMixin.connect()SentinelSearchlistsMixin.create_search()SentinelSearchlistsMixin.credentialsSentinelSearchlistsMixin.delete_search()SentinelSearchlistsMixin.endpointsSentinelSearchlistsMixin.get_metrics()SentinelSearchlistsMixin.get_network_details()SentinelSearchlistsMixin.get_resource_details()SentinelSearchlistsMixin.get_resources()SentinelSearchlistsMixin.get_sentinel_workspaces()SentinelSearchlistsMixin.get_subscription_info()SentinelSearchlistsMixin.get_subscriptions()SentinelSearchlistsMixin.list_sentinel_workspaces()SentinelSearchlistsMixin.monitoring_clientSentinelSearchlistsMixin.network_clientSentinelSearchlistsMixin.resource_clientSentinelSearchlistsMixin.sent_urlsSentinelSearchlistsMixin.sub_clientSentinelSearchlistsMixin.url
- msticpy.context.azure.sentinel_ti module
SentinelTIMixinSentinelTIMixin.add_tag()SentinelTIMixin.base_urlSentinelTIMixin.bulk_create_indicators()SentinelTIMixin.check_connected()SentinelTIMixin.cloudSentinelTIMixin.compute_clientSentinelTIMixin.connect()SentinelTIMixin.create_indicator()SentinelTIMixin.credentialsSentinelTIMixin.delete_indicator()SentinelTIMixin.endpointsSentinelTIMixin.get_all_indicators()SentinelTIMixin.get_indicator()SentinelTIMixin.get_metrics()SentinelTIMixin.get_network_details()SentinelTIMixin.get_resource_details()SentinelTIMixin.get_resources()SentinelTIMixin.get_sentinel_workspaces()SentinelTIMixin.get_subscription_info()SentinelTIMixin.get_subscriptions()SentinelTIMixin.get_ti_metrics()SentinelTIMixin.list_sentinel_workspaces()SentinelTIMixin.monitoring_clientSentinelTIMixin.network_clientSentinelTIMixin.query_indicators()SentinelTIMixin.resource_clientSentinelTIMixin.sent_urlsSentinelTIMixin.sub_clientSentinelTIMixin.update_indicator()SentinelTIMixin.url
- msticpy.context.azure.sentinel_utils module
SentinelInstanceDetailsSentinelUtilsMixinSentinelUtilsMixin.base_urlSentinelUtilsMixin.check_connected()SentinelUtilsMixin.cloudSentinelUtilsMixin.compute_clientSentinelUtilsMixin.connect()SentinelUtilsMixin.credentialsSentinelUtilsMixin.endpointsSentinelUtilsMixin.get_metrics()SentinelUtilsMixin.get_network_details()SentinelUtilsMixin.get_resource_details()SentinelUtilsMixin.get_resources()SentinelUtilsMixin.get_sentinel_workspaces()SentinelUtilsMixin.get_subscription_info()SentinelUtilsMixin.get_subscriptions()SentinelUtilsMixin.list_sentinel_workspaces()SentinelUtilsMixin.monitoring_clientSentinelUtilsMixin.network_clientSentinelUtilsMixin.resource_clientSentinelUtilsMixin.sent_urlsSentinelUtilsMixin.sub_clientSentinelUtilsMixin.url
build_sentinel_resource_id()extract_sentinel_response()parse_resource_id()validate_resource_id()
- msticpy.context.azure.sentinel_watchlists module
SentinelWatchlistsMixinSentinelWatchlistsMixin.add_watchlist_item()SentinelWatchlistsMixin.base_urlSentinelWatchlistsMixin.check_connected()SentinelWatchlistsMixin.cloudSentinelWatchlistsMixin.compute_clientSentinelWatchlistsMixin.connect()SentinelWatchlistsMixin.create_watchlist()SentinelWatchlistsMixin.credentialsSentinelWatchlistsMixin.delete_watchlist()SentinelWatchlistsMixin.delete_watchlist_item()SentinelWatchlistsMixin.endpointsSentinelWatchlistsMixin.get_metrics()SentinelWatchlistsMixin.get_network_details()SentinelWatchlistsMixin.get_resource_details()SentinelWatchlistsMixin.get_resources()SentinelWatchlistsMixin.get_sentinel_workspaces()SentinelWatchlistsMixin.get_subscription_info()SentinelWatchlistsMixin.get_subscriptions()SentinelWatchlistsMixin.list_sentinel_workspaces()SentinelWatchlistsMixin.list_watchlist_items()SentinelWatchlistsMixin.list_watchlists()SentinelWatchlistsMixin.monitoring_clientSentinelWatchlistsMixin.network_clientSentinelWatchlistsMixin.resource_clientSentinelWatchlistsMixin.sent_urlsSentinelWatchlistsMixin.sub_clientSentinelWatchlistsMixin.url
- msticpy.context.azure.sentinel_workspaces module
ParsedUrlComponentsSentinelWorkspacesMixinSentinelWorkspacesMixin.base_urlSentinelWorkspacesMixin.check_connected()SentinelWorkspacesMixin.cloudSentinelWorkspacesMixin.compute_clientSentinelWorkspacesMixin.connect()SentinelWorkspacesMixin.credentialsSentinelWorkspacesMixin.endpointsSentinelWorkspacesMixin.get_metrics()SentinelWorkspacesMixin.get_network_details()SentinelWorkspacesMixin.get_resource_details()SentinelWorkspacesMixin.get_resource_id_from_url()SentinelWorkspacesMixin.get_resources()SentinelWorkspacesMixin.get_sentinel_workspaces()SentinelWorkspacesMixin.get_subscription_info()SentinelWorkspacesMixin.get_subscriptions()SentinelWorkspacesMixin.get_workspace_details_from_url()SentinelWorkspacesMixin.get_workspace_id()SentinelWorkspacesMixin.get_workspace_name()SentinelWorkspacesMixin.get_workspace_settings()SentinelWorkspacesMixin.get_workspace_settings_by_name()SentinelWorkspacesMixin.list_sentinel_workspaces()SentinelWorkspacesMixin.monitoring_clientSentinelWorkspacesMixin.network_clientSentinelWorkspacesMixin.resource_clientSentinelWorkspacesMixin.sent_urlsSentinelWorkspacesMixin.sub_clientSentinelWorkspacesMixin.url